Web Clients (was Re: Monticello authentication methods?)

Ken Causey ken at kencausey.com
Thu Sep 14 15:58:11 UTC 2006


There was discussion of replacing it within the IO team, but never any
decision as to what to replace it with.  That was back in April and
there's been no further discussion or action since then that I'm aware
of.

Ken

On Thu, 2006-09-14 at 01:23 -0700, Todd Blanchard wrote:
> I was under the impression we were going to deprecate that stuff in  
> favor of the  Steve Waring's http client package.
> 
> Right Ken?
> 
> -Todd Blanchard
> 
> On Sep 13, 2006, at 11:21 PM, stephane ducasse wrote:
> 
> > So why a group of guy start to fix it!
> > Let's try to step by step little peeble by little peeble  
> > improve...No giant step just a tiny and simple one
> >
> >>> Note that this is not doing you any good security-wise, because  
> >>> MC will
> >>> send the basic-auth user:password anyway, and only if that fails,  
> >>> digest
> >>> is tried. HTTPSocket authentication needs to be completely reworked.
> >>
> >> Not only authentication, everything. The whole class is just awful.
> >>
> >> Philippe
> >>
> >
> >
> 
> 
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.squeakfoundation.org/pipermail/squeak-dev/attachments/20060914/83b45567/attachment.pgp


More information about the Squeak-dev mailing list